Get the latest news about SolarWinds Security Event Manager (SEM)
Hi everyone. Does anyone here was able to monitor via SEM the audit logs from Fortigate Firewalls like when creating, editing, or deleting firewall policies? Can you share the configurations you have performed. Thank you in advance!
Does anyone here configured their FortiAnalyzer to send logs to SEM? Is there any other configuration required in FortiAnalyzer? I tried sending test logs from FAZ and can't receive any logs when checking it via checklogs in SEM. Hoping someone can help me. Thank you!
Anybody ever wonder why SEM has an administrative account CMC that doesn't log when it's used and you can't alert off of it? Do you run any product, let alone a security product, that doesn't log logon or logoff events either success or failure on all accounts, especially administrative accounts? After allowing all of us…
Hi all, I get 4XX errors when I run log & event manager reports with SEM. Where can I get a list of all error codes? With them, I can troubleshoot the issues. Thank you.
Hi guys, I am a new user and I have a client who wants to add some products in the LEM software: 1. Access Point Aruba 505 2. HPE OfficeConnect Switch 1920S 48G 4SFP PPoE+ (370W) JL386A 3. HPE 1920-48G-PoE+ (370W) 4. NAS synology (DS1817 & DS2020+) 5. HP MSA 2062 UPS Efacec Agile Plus RT II 6-10kVA Printers: SHARP MX2614…
Any plans, or current capabilities, to script SEM commands for searching and/or commands? Obviously it must be capable of being done since the HTML UI can access the SEM data store and make changes. The reason I'm asking is that I'd like to automate the removal of nodes that have not registered an event over the last X…
We rely on SEM sending email for external alerting, including auto-generating incidents. In the not-too-distant future, support for auto-generating incidents via email will be going away, so I need to find another way. Calling a REST API from SEM would be the preferred method but that isn't an available action. Any reasons…
Curious is anyone has seen this or how people are dealing with it. My understanding is that the SEM agent doesn't actually use any of the vulnerable classes in Log4j but Tenable is flagging the files based on version number which right now is 1.x which is out of support so it's flagged as a vulnerability. Whether or not…
HI team, I need some clarity on logs displayed on my Solarwinds SEM, I need to know the difference between InsertedIP and DetectionUP many times it displays the same entry. Thanks.
Hello everyone. My team is looking for a SIEM and SEM looks promising. I see that it can pull logs & events from Windows nodes via agent. What kind of user activity would that agent be able to pull to send to SEM? This is in an AD environment, domain-joined PCs. Would it only be able to capture logon/logoff events? Or can…
It looks like you're new here. Sign in or register to get started.